Never let a secret expire without warning
Every Monday, WebRun opens HashiCorp Cloud Platform, checks Vault for secrets and certificates expiring in the next 30 days, posts a heads up to Microsoft Teams naming each one and its owner, and creates a Trello card per expiring secret so a renewal never gets missed and quietly breaks a service later.
- No credit card
- Under $0.01 per run
- Cancel anytime
How do I avoid a secret or certificate expiring unnoticed in HCP Vault?
WebRun checks HCP Vault every Monday for secrets and certificates expiring in the next 30 days. It posts a heads up to Microsoft Teams naming each one and its owner, and creates a Trello card to track the renewal, so an expiring secret never quietly breaks a service without warning.
- Secrets get renewed with 30 days of notice instead of after they expire
- Every expiring secret has an owner and a tracked card
- Nothing breaks quietly from an expired certificate or token
Built for infrastructure teams · security engineers · platform teams · DevOps
What does WebRun do on every run?
The exact actions WebRun takes, in order - in plain language, so you can adjust anything.
-
WebRun signs in and gets to work
Opens
portal.cloud.hashicorp.comin a real browser with your saved login - no setup, no API keys. -
1
HashiCorp Cloud Platform - check secrets nearing expiry
WebRun opens HashiCorp Cloud Platform to check secrets nearing expiry. - Open HCP Vault and list secrets and certificates expiring in the next 30 days
- Capture the secret name, owner, and expiry date for each
- Skip secrets already renewed since the last check
Done when Every secret expiring in the next 30 days is listed with its owner and date.
-
2
Microsoft Teams - post a heads up to the team
WebRun opens Microsoft Teams to post a heads up to the team. - Post a heads up to the platform channel naming each expiring secret and its owner
- Sort by which expires soonest
- Note which ones already have a Trello card from a prior run
Done when The platform channel has this week's list of expiring secrets.
-
3
Trello - card each expiring secret
WebRun opens Trello to card each expiring secret. - Create a card for each newly expiring secret with its owner and expiry date
- Move the card to done once the secret is renewed
- Skip creating a duplicate card for a secret already tracked
Done when Every expiring secret has a card until it's renewed.
How is each run configured?
Secure by default
Connect once, stays signed in
WebRun signs in once and keeps each session in a persistent environment, so every run picks up right where it left off.
Every action is checked against this policy before it runs.
Questions, answered
Will it renew or rotate a secret itself?
No. WebRun only reports what's expiring. Renewing or rotating a secret is always done by your infrastructure team in Vault.
How far ahead does it warn?
30 days, so there's plenty of time to renew a secret before it expires and breaks something.
What happens once a secret is renewed?
Its Trello card moves to done the next time the check finds the secret no longer expiring soon.
Put this on autopilot.
Turn it on in minutes - or have our team set it up for you.